What is Detectify?

Web security blog

XSS challenge – Twins of Ten

Cross Side Scripting Twins of Ten XSS

Google XSS Turkey

Cross Site Scripting Google Turkey XSS

Building an XSS polyglot through SWF and CSP

bug bounty Frans Rosén XSS

Stealing files from web servers by exploiting a popular PDF generator

PDF PHP TCPDF

Finding an XSS in an HTML-based Android application

Android Ethical Hacking XSS Zoho

Hijacking of abandoned subdomains part 2

DNS Resource Records Hostile Subdomain takeover Microsoft Szymon Gruszecki

Hostile Subdomain Takeover using Heroku/Github/Desk + more

Desk Github Heroku Hostile Subdomain takeover

Bash vulnerability affecting web servers and many other services

bash

How the celebrity hack could have been done

hack iCloud privacy

The lesser known pitfalls of allowing file uploads on your website

Frans Rosén